slide1 l.
Download
Skip this Video
Download Presentation
Information Governance for Unstructured Data Using the Data Classification Toolkit for Windows Server 2008 R2

Loading in 2 Seconds...

play fullscreen
1 / 36

Information Governance for Unstructured Data Using the Data Classification Toolkit for Windows Server 2008 R2 - PowerPoint PPT Presentation


  • 146 Views
  • Uploaded on

WSV323. Information Governance for Unstructured Data Using the Data Classification Toolkit for Windows Server 2008 R2. Nir Ben Zvi (Principal Program Manager Lead) Gunjan Jain (Senior Program Manager) Microsoft. Session Objectives and Takeaways. Session Objectives

loader
I am the owner, or an agent authorized to act on behalf of the owner, of the copyrighted work described.
capcha
Download Presentation

PowerPoint Slideshow about 'Information Governance for Unstructured Data Using the Data Classification Toolkit for Windows Server 2008 R2' - lalaine


Download Now An Image/Link below is provided (as is) to download presentation

Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author.While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server.


- - - - - - - - - - - - - - - - - - - - - - - - - - E N D - - - - - - - - - - - - - - - - - - - - - - - - - -
Presentation Transcript
slide1
WSV323

Information Governance for Unstructured Data Using the Data Classification Toolkit for Windows Server 2008 R2

Nir Ben Zvi (Principal Program Manager Lead)

Gunjan Jain (Senior Program Manager)

Microsoft

session objectives and takeaways
Session Objectives and Takeaways
  • Session Objectives
    • Insight into data governance for unstructured data
    • Introducing the Data Classification Toolkit for data compliance
    • Making it real through demos!
  • Key Takeaways
    • Data Classification Toolkit
      • Helps manage the unmanageable
      • Reduces cost and complexity of data compliance
slide4

How do I meet regulatory compliance and business requirements?

Should I move all my data to SharePoint?

My file shares are a mess, what can I do?

How do I start managing my unstructured data?

managing the unmanaged data governance for unstructured data
Managing the unmanagedData governance for unstructured data
  • Access Controls,
  • Rights Management
  • Retention, Auditing
  • Expiration, Backup
slide7

Addressing Data Compliance using File Classification Infrastructure & Data Classification Toolkit for Windows Server 2008 R2

manage data based on business value
Manage Data Based On Business Value
  • Step 1

Classify Data

  • Apply policy according to classification
  • Step 2
how do we do it
How do we do it?
  • Properties
  • File Server
  • Classify
  • (Manual/Automatic)

Rules

  • Classification
  • Engine
  • File Shares

File Management Tasks

  • Apply Policies
  • Access Controls,
  • Rights Management
  • Retention, Auditing
  • Expiration, Backup

Low Business Value

High Business Value

making it real

Making it real!!

Gunjan Jain

Solution Accelerator Team

demo

scenario data compliance requirements from pci dss
Scenario: Data Compliance Requirements from PCI-DSS
  • Payment Card Industry - Data Security Standard

Audit Committee

Board of Dir./CEO

Control Objectives

Data Protection

Data Classification

  • Classify Data containing PII
  • RMS Protect Data containing PII

CIO/CSO

Control Activities

IT Pro

implementing control activities

Implementing control activities

Gunjan Jain

Solution Accelerator Team

demo

scenario data classification protection

ITPro

Scenario: Data Classification & Protection

Create

Classification Baseline

for PCI-DSS

(Import & Customize)

Implement

Controls for PCI-DSS

PCI-DSS

Classify & Apply Policies

apply classification baseline across multiple file servers

Apply classification baseline across multiple file servers

Gunjan Jain

Solution Accelerator Team

demo

scenario apply classification baseline to all file servers

ITPro

Scenario: Apply classification baseline to all File Servers

Apply Baseline to all

File Servers

Create Baseline

for PCI-DSS

(Import & Customize)

PCI-DSS

Implement

Controls for PCI-DSS

Classify & Apply Policies

Classify & Apply Policies

Export Baseline

Baseline

validate and monitor controls through reporting

Validate and monitor controls through reporting

Gunjan Jain

Solution Accelerator Team

demo

scenario validate and monitor

ITPro

Scenario: Validate and Monitor

Apply Baseline to all

File Servers

Create Baseline

for PCI-DSS

(Import & Customize)

PCI-DSS

Implement

Controls for PCI-DSS

Classify & Apply Policies

Classify & Apply Policies

Validate

Auditor / Compliance Manager

Export Baseline

Reports

Baseline

Monitor

IT Pro

demo tying it all together
Demo – Tying it all together!

2. Classify & Apply Policies

3. Collect

1. Configure

4. Report

data classification toolkit system center working together

IT GRC Process Management Pack

(Regulations, Controls)

Data Classification Toolkit & System CenterWorking together!
  • PCI – DSS (Regulation)

Audit Committee

Board of Dir./CEO

Control Objectives

Data Classification Toolkit

(Knowledge + Multiple File Server Support)

Data Protection

CIO/CSO

File Server & FCI

Data Classification

  • Classify Data containing PII
  • RMS Protect Data containing PII

Control Activities

IT Pro

an auditor s view

An Auditor’s View…

Shahed K. Latif

Partner / Information Protection

KPMG

partner

information governance
Information Governance

Does the business comply with employee, customer, and third party privacy requirements?

Are controls designed in accordance with information asset value and risk?

Are resources allocated in accordance with value and risk?

Are data protection needs communicated to the PMO, Internal Audit, Legal, BI, etc.?

Who has access to what?

Do incident response programs adequately address data breaches?

Are tools used to restrict data leakage and loss?

Do controls protect the quality, integrity, completeness, and availability of data?

How are employees trained?

Shahed K. Latif

Partner

Information Security

KPMG

Where does information come from and where does it go?

Is the organization adequately profiting from the use of information?

Which processes, and what data, drives business value and risk?

Do contract terms and/or SLAs reflect information asset requirements and controls (owned and managed)?

Is proper notification provided in the event of data breach?

Is IT effectively collecting, organizing, storing, retrieving, and disposing of electronic data and content?

Is data duplication, redundancy, and exposure minimized?

slide28

Call To Action – Sign up Now for Beta!

Beta Q2 2011, RTW Q3 2011

Q3

DCT RTW

DCT Beta

Q3

2011

WS08 R2 SP1

Q2

IT

GRC PMP SP1

IT GRC PMP

Q1

2010

Q4

related content
Related Content
  • WSV325: Security configurations simplified with the Microsoft Security Compliance Manager (Wed 3:15pm - 4:30pm)
  • WSV317 Windows Server 2008 R2 File Services Consolidation: Technology Update (Thurs 10:15am – 11:30am)
  • WSV314 Microsoft Assessment and Planning (MAP) Toolkit 5.5 Enhanced Server Consolidation Assessments for Hyper-V (Thurs 4:30pm – 4:45p)
  • Find Us Later in Exhibition Hall At…
    • WSV23 - File Services & Windows Storage Server 2008 R2 Booth
    • Microsoft Solutions Accelerators Booth
track resources
Track Resources
  • Sign Up now for Data Classification Toolkit for Windows Server 2008 R2 Beta
  • Submit feedback for Solution Accelerator through secwish@microsoft.com
  • Compliance Solution Accelerators Home: www.microsoft.com/grc
  • File Classification Infrastructure: www.microsoft.com/fci
track resources31
Track Resources
  • Don’t forget to visit the Cloud Power area within the TLC (Blue Section) to see product demos and speak with experts about the Server & Cloud Platform solutions that help drive your business forward.
  • You can also find the latest information about our products at the following links:
  • Cloud Power - http://www.microsoft.com/cloud/
  • Private Cloud - http://www.microsoft.com/privatecloud/
  • Windows Server - http://www.microsoft.com/windowsserver/
  • Windows Azure - http://www.microsoft.com/windowsazure/
  • Microsoft System Center - http://www.microsoft.com/systemcenter/
  • Microsoft Forefront - http://www.microsoft.com/forefront/
resources
Resources
  • Connect. Share. Discuss.

http://northamerica.msteched.com

Learning

  • Sessions On-Demand & Community
  • Microsoft Certification & Training Resources

www.microsoft.com/teched

www.microsoft.com/learning

  • Resources for IT Professionals
  • Resources for Developers

http://microsoft.com/technet

http://microsoft.com/msdn

slide35

© 2011 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries.

The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.